Reading is great. Tracking makes it stick. Sign up for a free Dashboard to tick off tasks and see your Security Score.
Get my free Dashboard →Keeping Android up to date
Keeping your Android phone updated is the single highest-impact security action you can take. Software updates patch known vulnerabilities that attackers actively exploit. This guide shows you how to check for updates, enable automatic updates, and what to do if your device no longer receives them.

Why updates matter more than anything else
Every month, Android releases security patches that fix vulnerabilities discovered in the previous month. Attackers routinely scan for devices running older software and exploit these known weaknesses. A phone running a six-month-old security patch has dozens of publicly known vulnerabilities that have already been exploited in the wild.
- Most successful Android attacks exploit known vulnerabilities, not unknown ones
- Security patches often fix vulnerabilities attackers are already using
- Keeping your phone updated is free and takes minutes: skipping it is the most common security mistake
Checking for Android system updates
How to check your current version and download pending updates:
- Go to Settings > System > Software update (exact path varies by manufacturer)
- On Samsung: Settings > Software update; on Pixel: Settings > System > System update
- Tap "Check for updates": download and install any available updates
- Your phone will restart during installation; save any open work first
Enabling automatic updates
Set your phone to download and install updates automatically:
- Go to Settings > System > Software update > Auto update (name varies)
- Enable automatic download over Wi-Fi to avoid using mobile data
- Schedule updates for overnight or times you are not using your phone
- For apps: open Google Play > Profile > Settings > App updates > Select "Over any network" or "Over Wi-Fi only"
If your device no longer receives updates
Android manufacturers typically provide security updates for 3–5 years. After that, your device stops receiving patches. This is a significant security risk:
- Check your Android version and security patch level: Settings > About phone > Android version
- Search for "[Your phone model] end of support date" to confirm how long updates will continue
- An unpatched phone should not be used for banking, email, or accessing sensitive accounts
- If your phone is end-of-support, consider replacing it: the security risk of continuing to use it is significant
Track your Android security progress. Free.
Create a free account to tick off tasks, see your Security Score improve, and know exactly what you've done and what's still to do.
Start your free security check